Show filters
109 Total Results
Displaying 101-109 of 109
Sort by:
Attacker Value
Unknown

CVE-2014-1297

Disclosure Date: April 02, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, does not properly validate WebProcess IPC messages, which allows remote attackers to bypass a sandbox protection mechanism and read arbitrary files by leveraging WebProcess access.
0
Attacker Value
Unknown

CVE-2014-1270

Disclosure Date: February 27, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1268 and CVE-2014-1269.
0
Attacker Value
Unknown

CVE-2014-1269

Disclosure Date: February 27, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1268 and CVE-2014-1270.
0
Attacker Value
Unknown

CVE-2014-1268

Disclosure Date: February 27, 2014 (last updated October 05, 2023)
WebKit, as used in Apple Safari before 6.1.2 and 7.x before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1269 and CVE-2014-1270.
0
Attacker Value
Unknown

CVE-2012-0637

Disclosure Date: March 08, 2012 (last updated October 04, 2023)
WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1.
0
Attacker Value
Unknown

CVE-2012-0636

Disclosure Date: March 08, 2012 (last updated October 04, 2023)
WebKit, as used in Apple iTunes before 10.6, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2012-03-07-1.
0
Attacker Value
Unknown

CVE-2011-0132

Disclosure Date: March 03, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in the Runin box functionality in the Cascading Style Sheets (CSS) 2.1 Visual Formatting Model implementation in WebKit, as used in Apple iTunes before 10.2 on Windows and Apple Safari, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
0
Attacker Value
Unknown

CVE-2011-0115

Disclosure Date: March 03, 2011 (last updated October 04, 2023)
The DOM level 2 implementation in WebKit, as used in Apple iTunes before 10.2 on Windows and Apple Safari, does not properly handle DOM manipulations associated with event listeners during processing of range objects, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-02-1.
0
Attacker Value
Unknown

CVE-2007-6166

Disclosure Date: November 29, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.
0